2024 CVE Vulnerabilities
39,218 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-24443 | MEDIUM | 6.5 | 0.3% | Jan 21, 2025 | An uninitialized pointer dereference in the ngap_handle_pdu_session_resource_setup_response routine of OpenAirInterface ... |
| CVE-2024-45478 | MEDIUM | 4.8 | 0.5% | Jan 21, 2025 | Stored XSS vulnerability in Edit Service Page of Apache Ranger UI in Apache Ranger Version 2.4.0. Users are recommended ... |
| CVE-2024-24445 | MEDIUM | 6.5 | 0.3% | Jan 21, 2025 | OpenAirInterface CN5G AMF (oai-cn5g-amf) <= 2.0.0 contains a null dereference in its handling of unsupported NGAP protoc... |
| CVE-2024-57545 | MEDIUM | 5.5 | 0.4% | Jan 21, 2025 | Linksys E8450 v1.2.00.360516 was discovered to contain a buffer overflow vulnerability. The parsed field (hidden_dhcp_nu... |
| CVE-2024-57544 | MEDIUM | 5.5 | 0.4% | Jan 21, 2025 | Linksys E8450 v1.2.00.360516 was discovered to contain a buffer overflow vulnerability. The parsed field (lan_ipaddr) is... |
| CVE-2024-57543 | MEDIUM | 5.5 | 0.4% | Jan 21, 2025 | Linksys E8450 v1.2.00.360516 was discovered to contain a buffer overflow vulnerability. The parsed field (dhcpstart_ip) ... |
| CVE-2024-57541 | MEDIUM | 5.5 | 0.4% | Jan 21, 2025 | Linksys E8450 v1.2.00.360516 was discovered to contain a buffer overflow vulnerability. The parsed field (ipv6_protect_s... |
| CVE-2024-57540 | MEDIUM | 6.5 | 0.7% | Jan 21, 2025 | Linksys E8450 v1.2.00.360516 was discovered to contain a buffer overflow vulnerability. The parsed field (action) is cop... |
| CVE-2024-57538 | MEDIUM | 6.5 | 0.7% | Jan 21, 2025 | Linksys E8450 v1.2.00.360516 was discovered to contain a buffer overflow vulnerability. The parsed field (anonymous_prot... |
| CVE-2024-57537 | MEDIUM | 6.3 | 0.4% | Jan 21, 2025 | Linksys E8450 v1.2.00.360516 was discovered to contain a buffer overflow vulnerability. The parsed field (page) is copie... |
| CVE-2024-57360 | MEDIUM | 5.5 | 0.2% | Jan 21, 2025 | https://www.gnu.org/software/binutils/ nm >=2.43 is affected by: Incorrect Access Control. The type of exploitation is: ... |
| CVE-2024-55958 | MEDIUM | 4.8 | 0.4% | Jan 21, 2025 | Northern.tech CFEngine Enterprise Mission Portal 3.24.0, 3.21.5, and below allows XSS. The fixed versions are 3.24.1 and... |
| CVE-2024-48392 | MEDIUM | 5.4 | 0.8% | Jan 21, 2025 | OrangeScrum v2.0.11 is vulnerable to Cross Site Scripting (XSS). An attacker can inject malicious JavaScript code into u... |
| CVE-2024-21245 | MEDIUM | 5.4 | 0.2% | Jan 21, 2025 | Vulnerability in the JD Edwards EnterpriseOne Tools product of Oracle JD Edwards (component: Business Logic Infra SEC). ... |
| CVE-2024-55504 | MEDIUM | 5.5 | 0.5% | Jan 21, 2025 | An issue in RAR Extractor - Unarchiver Free and Pro v.6.4.0 allows local attackers to inject arbitrary code potentially ... |
| CVE-2024-51417 | MEDIUM | 6.4 | 0.3% | Jan 21, 2025 | An issue in System.Linq.Dynamic.Core before 1.6.0 allows remote access to properties on reflection types and static prop... |
| CVE-2024-54795 | MEDIUM | 5.4 | 0.5% | Jan 21, 2025 | SpagoBI v3.5.1 contains multiple Stored Cross-Site Scripting (XSS) vulnerabilities in the create/edit forms of the works... |
| CVE-2024-54792 | MEDIUM | 6.1 | 0.3% | Jan 21, 2025 | A Cross-Site Request Forgery (CSRF) vulnerability has been found in SpagoBI v3.5.1 in the user administration panel. An ... |
| CVE-2024-56990 | MEDIUM | 4.5 | 0.4% | Jan 21, 2025 | PHPGurukul Hospital Management System 4.0 is vulnerable to Cross Site Scripting (XSS) in /view-medhistory.php and /admin... |
| CVE-2024-56998 | MEDIUM | 4.2 | 0.2% | Jan 21, 2025 | PHPGurukul Hospital Management System 4.0 is vulnerable to Cross Site Scripting (XSS) in /edit-profile.php via the param... |
| CVE-2024-56997 | MEDIUM | 4.2 | 0.2% | Jan 21, 2025 | PHPGurukul Hospital Management System 4.0 is vulnerable to Cross Site Scripting (XSS) in /doctor/index.php via the 'Emai... |
| CVE-2024-56277 | MEDIUM | 5.3 | 0.3% | Jan 21, 2025 | Improper Encoding or Escaping of Output vulnerability in Ays Pro Poll Maker poll-maker.This issue affects Poll Maker: fr... |
| CVE-2024-57946 | MEDIUM | 5.5 | 0.2% | Jan 21, 2025 | In the Linux kernel, the following vulnerability has been resolved: virtio-blk: don't keep queue frozen during system s... |
| CVE-2024-57944 | MEDIUM | 5.5 | 0.2% | Jan 21, 2025 | In the Linux kernel, the following vulnerability has been resolved: iio: adc: ti-ads1298: Add NULL check in ads1298_ini... |
| CVE-2024-57942 | MEDIUM | 5.5 | 0.2% | Jan 21, 2025 | In the Linux kernel, the following vulnerability has been resolved: netfs: Fix ceph copy to cache on write-begin At th... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now